CVE-2023-41934 - How Jenkins Pipeline Maven Integration Plugin Leaked Usernames in Build Logs (with PoC)
If you rely on Jenkins and use the Pipeline Maven Integration Plugin, you may be exposing sensitive usernames in your build logs, even if you
CVE-2023-41931 - Exploiting Jenkins Job Configuration History Plugin XSS Vulnerability (Detailed Walkthrough)
Jenkins is one of the most widely used open-source automation servers for continuous integration and continuous delivery (CI/CD). Plugins expand Jenkins features but
CVE-2023-41947 - Exploiting Missing Permission Checks in Jenkins Frugal Testing Plugin
In September 2023, a security vulnerability labeled CVE-2023-41947 was disclosed in the Jenkins ecosystem. The bug was found in the Frugal Testing Plugin
CVE-2023-39264 - Apache Superset Stack Trace Exposure in REST API (Up to 2.1.) – Exploit Details and Security Insights
Date: June 2024
Author: [Exclusive Post for Your Eyes Only]
Apache Superset is one of the most popular open-source data exploration and visualization platforms
CVE-2023-36387 - How Improper Default REST API Permissions in Apache Superset Expose Sensitive Database Operations
---
Introduction
In June 2023, a significant security issue was disclosed in Apache Superset—an open-source data visualization and exploration platform. The vulnerability, identified as
Episode
00:00:00
00:00:00